Centos 7: ClamAV Antivirus Yükleme
Linux işletim sistemi için Open Source çok güzel bir antivirus programı var.
Komur satırından arama , arayüzden kontrol , bulunan virüsleri silme karantinaya alma , güncel virüs database, bildiğiniz virüsler veritabanında yoksa ekleme gibi esnek ve güzel bir yapısı var hemde multi thread yapısıyla çok hızlı tarama yapabiliyor.
Yüklemek için epel reposuna ihtiyaç var;
yum --enablerepo=epel -y install clamav clamav-update
ilk kurulumdan sonra küçük bir önlemle configurasyon yapmadan çalıştırmanızı engellemişler..
/etc/freshclam.conf dosyasındaki Example kelimesini silmeniz gerekiyor.
sed -i -e "s/^Example/#Example/" /etc/freshclam.conf
Şimdi yükleme tamamlandı ve artı virus database’ini güncelleme vakti;
freshclam
freshclam ERROR: Please edit the example config file /etc/freshclam.conf ERROR: Can't open/parse the config file /etc/freshclam.conf [root@arcelik bin]# vim /etc/freshclam.conf [root@arcelik bin]# freshclam ClamAV update process started at Wed Feb 18 16:53:38 2015 main.cvd is up to date (version: 55, sigs: 2424225, f-level: 60, builder: neo) WARNING: getfile: daily-19996.cdiff not found on remote server (IP: 195.222.33.229) WARNING: getpatch: Can't download daily-19996.cdiff from database.clamav.net Downloading daily-19996.cdiff [100%] Downloading daily-19997.cdiff [100%] Downloading daily-19998.cdiff [100%] Downloading daily-19999.cdiff [100%] Downloading daily-20000.cdiff [100%] Downloading daily-20001.cdiff [100%] Downloading daily-20002.cdiff [100%] Downloading daily-20003.cdiff [100%] Downloading daily-20004.cdiff [100%] Downloading daily-20005.cdiff [100%] Downloading daily-20006.cdiff [100%] Downloading daily-20007.cdiff [100%] Downloading daily-20008.cdiff [100%] Downloading daily-20009.cdiff [100%] Downloading daily-20010.cdiff [100%] Downloading daily-20011.cdiff [100%] Downloading daily-20012.cdiff [100%] Downloading daily-20013.cdiff [100%] Downloading daily-20014.cdiff [100%] Downloading daily-20015.cdiff [100%] Downloading daily-20016.cdiff [100%] Downloading daily-20017.cdiff [100%] Downloading daily-20018.cdiff [100%] Downloading daily-20019.cdiff [100%] Downloading daily-20020.cdiff [100%] Downloading daily-20021.cdiff [100%] Downloading daily-20022.cdiff [100%] Downloading daily-20023.cdiff [100%] Downloading daily-20024.cdiff [100%] Downloading daily-20025.cdiff [100%] Downloading daily-20026.cdiff [100%] Downloading daily-20027.cdiff [100%] Downloading daily-20028.cdiff [100%] Downloading daily-20029.cdiff [100%] Downloading daily-20030.cdiff [100%] Downloading daily-20031.cdiff [100%] Downloading daily-20032.cdiff [100%] Downloading daily-20033.cdiff [100%] Downloading daily-20034.cdiff [100%] Downloading daily-20035.cdiff [100%] Downloading daily-20036.cdiff [100%] Downloading daily-20037.cdiff [100%] Downloading daily-20038.cdiff [100%] Downloading daily-20039.cdiff [100%] Downloading daily-20040.cdiff [100%] Downloading daily-20041.cdiff [100%] Downloading daily-20042.cdiff [100%] Downloading daily-20043.cdiff [100%] Downloading daily-20044.cdiff [100%] Downloading daily-20045.cdiff [100%] Downloading daily-20046.cdiff [100%] Downloading daily-20047.cdiff [100%] Downloading daily-20048.cdiff [100%] Downloading daily-20049.cdiff [100%] Downloading daily-20050.cdiff [100%] Downloading daily-20051.cdiff [100%] Downloading daily-20052.cdiff [100%] Downloading daily-20053.cdiff [100%] Downloading daily-20054.cdiff [100%] Downloading daily-20055.cdiff [100%] Downloading daily-20056.cdiff [100%] Downloading daily-20057.cdiff [100%] Downloading daily-20058.cdiff [100%] Downloading daily-20059.cdiff [100%] Downloading daily-20060.cdiff [100%] Downloading daily-20061.cdiff [100%] Downloading daily-20062.cdiff [100%] Downloading daily-20063.cdiff [100%] Downloading daily-20064.cdiff [100%] Downloading daily-20065.cdiff [100%] Downloading daily-20066.cdiff [100%] Downloading daily-20067.cdiff [100%] Downloading daily-20068.cdiff [100%] Downloading daily-20069.cdiff [100%] Downloading daily-20070.cdiff [100%] Downloading daily-20071.cdiff [100%] Downloading daily-20072.cdiff [100%] Downloading daily-20073.cdiff [100%] daily.cld updated (version: 20073, sigs: 1328042, f-level: 63, builder: neo) Downloading bytecode.cvd [100%] bytecode.cvd updated (version: 246, sigs: 42, f-level: 63, builder: neo) Database updated (3752309 signatures) from database.clamav.net (IP: 193.92.150.194)
Database’inizde güncellendi artık tarama yapabilirsiniz;
clamscan --infected --remove --recursive /home/ecamalan/
----------- SCAN SUMMARY ----------- Known viruses: 3746744 Engine version: 0.98.6 Scanned directories: 7282 Scanned files: 105385 Infected files: 0 Data scanned: 11845.36 MB Data read: 67199.36 MB (ratio 0.18:1) Time: 945.822 sec (15 m 45 s)
Centos 7 : Eski Kernelleri Temizleyin
Emre hocam clamav cisco’ nun sourcefire ı satın almasından sonra performans olarak çok kötü eğer sadece clamava guverseniz bol bol ramsonware yemeniz mümkün uyarmak bende 🙂
Tavsiyesini de alalım islam hocam.
İyiye yönlendirmiş olalım, yön gösterelim.